CVE-2011-1091
published 2011-03-14CVE-2011-1091: libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL…
PriorityP415medium4CVSS 2.0
AVNACLAuSCNINAP
EPSS
3.01%
85.9th percentile
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pidgin | < pidgin 2.7.11-1 (bookworm) | pidgin 2.7.11-1 (bookworm) |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | >= 0 < 2.7.11-1 | 2.7.11-1 |
| pidgin | pidgin | >= 0 < 2.7.11-1 | 2.7.11-1 |
| pidgin | pidgin | >= 0 < 2.7.11-1 | 2.7.11-1 |
| pidgin | pidgin | >= 0 < 2.7.11-1 | 2.7.11-1 |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv4.0MEDIUM
vendor_debian4.0LOW
vendor_redhat4.0MEDIUM
vendor_ubuntu4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-784h-wwvm-3rvx: libymsg
ghsa_unreviewed·2022-05-17
CVE-2011-1091 [MEDIUM] GHSA-784h-wwvm-3rvx: libymsg
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
OSV
CVE-2011-1091: libymsg
osv·2011-03-14·CVSS 4.0
CVE-2011-1091 [MEDIUM] CVE-2011-1091: libymsg
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
Ubuntu
Pidgin vulnerabilities
vendor_ubuntu·2011-11-21·CVSS 4.0
CVE-2011-1091 [MEDIUM] Pidgin vulnerabilities
Title: Pidgin vulnerabilities
Summary: Pidgin could be made to crash if it received specially crafted network
traffic.
Marius Wachtler discovered that Pidgin incorrectly handled malformed YMSG
messages in the Yahoo! protocol handler. A remote attacker could send a
specially crafted message and cause Pidgin to crash, leading to a denial
of service. This issue only affected Ubuntu 10.04 LTS and 10.10.
(CVE-2011-1091)
Marius Wachtler discovered that Pidgin incorrectly handled HTTP 100
responses in the MSN protocol handler. A remote attacker could send a
specially crafted message and cause Pidgin to crash, leading to a denial
of service. (CVE-2011-3184)
Diego Bauche Madero discovered that Pidgin incorrectly handled UTF-8
sequences in the SILC protocol handler. A remote attacker could send
Red Hat
Pidgin: Multiple NULL pointer dereference flaws in Yahoo protocol plug-in
vendor_redhat·2011-03-10·CVSS 4.0
CVE-2011-1091 [MEDIUM] CWE-476 Pidgin: Multiple NULL pointer dereference flaws in Yahoo protocol plug-in
Pidgin: Multiple NULL pointer dereference flaws in Yahoo protocol plug-in
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
Statement: This issue affects the versions of pidgin package as shipped with Red Hat Enterprise Linux 4, 5 and 6. The Red Hat Security Response Team has rated this issue as having low security impact, a future update may address this flaw.
Debian
CVE-2011-1091: pidgin - libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7...
vendor_debian·2011·CVSS 4.0
CVE-2011-1091 [MEDIUM] CVE-2011-1091: pidgin - libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7...
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
Scope: local
bookworm: resolved (fixed in 2.7.11-1)
bullseye: resolved (fixed in 2.7.11-1)
forky: resolved (fixed in 2.7.11-1)
sid: resolved (fixed in 2.7.11-1)
trixie: resolved (fixed in 2.7.11-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-1091 Pidgin: Multiple NULL pointer dereference flaws in Yahoo protocol plug-in [fedora-all]
bugzilla·2011-03-11·CVSS 4.0
CVE-2011-1091 [MEDIUM] CVE-2011-1091 Pidgin: Multiple NULL pointer dereference flaws in Yahoo protocol plug-in [fedora-all]
CVE-2011-1091 Pidgin: Multiple NULL pointer dereference flaws in Yahoo protocol plug-in [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=683031
Please note: t
Bugzilla
CVE-2011-1091 Pidgin: Multiple NULL pointer dereference flaws in Yahoo protocol plug-in
bugzilla·2011-03-08·CVSS 4.0
CVE-2011-1091 [MEDIUM] CVE-2011-1091 Pidgin: Multiple NULL pointer dereference flaws in Yahoo protocol plug-in
CVE-2011-1091 Pidgin: Multiple NULL pointer dereference flaws in Yahoo protocol plug-in
Multiple NULL pointer dereference flaws were found in the way Yahoo protocol
plug-in of the Pidgin instant messaging client handled malformed YMSG packets
(SMS messages and notification packets). A remote, authenticated user could
use this flaw to cause denial of service (Pidgin crash) via specially-crafted
notification message. The SMS messages handling issue is exploitable only via
specially-crafted SMS message, sent from remote, malicious Yahoo server.
Acknowledgements:
Red Hat would like to thank the Pidgin project for reporting these issues.
Upstream acknowledges Marius Wachtler as the original reporter.
Discussion:
This issue affects the versions of the pidgin package, as shipped
with Red Hat
http://developer.pidgin.im/viewmtn/revision/diff/5cbe18129b6e7c660bc093f7e5e1414ceca17d04/with/a7c415abba1f5f01f79295337518837f73d99bb7/libpurple/protocols/yahoo/libymsg.chttp://developer.pidgin.im/viewmtn/revision/info/a7c415abba1f5f01f79295337518837f73d99bb7http://lists.fedoraproject.org/pipermail/package-announce/2011-March/055874.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-March/056309.htmlhttp://secunia.com/advisories/43695http://secunia.com/advisories/43721http://secunia.com/advisories/46376http://slackware.com/security/viewer.php?l=slackware-security&y=2011&m=slackware-security.466884http://www.pidgin.im/news/security/?id=51http://www.redhat.com/support/errata/RHSA-2011-0616.htmlhttp://www.redhat.com/support/errata/RHSA-2011-1371.htmlhttp://www.securityfocus.com/bid/46837http://www.vupen.com/english/advisories/2011/0643http://www.vupen.com/english/advisories/2011/0661http://www.vupen.com/english/advisories/2011/0669http://www.vupen.com/english/advisories/2011/0703https://bugzilla.redhat.com/show_bug.cgi?id=683031https://exchange.xforce.ibmcloud.com/vulnerabilities/66055https://hermes.opensuse.org/messages/13195955https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18402http://developer.pidgin.im/viewmtn/revision/diff/5cbe18129b6e7c660bc093f7e5e1414ceca17d04/with/a7c415abba1f5f01f79295337518837f73d99bb7/libpurple/protocols/yahoo/libymsg.chttp://developer.pidgin.im/viewmtn/revision/info/a7c415abba1f5f01f79295337518837f73d99bb7http://lists.fedoraproject.org/pipermail/package-announce/2011-March/055874.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-March/056309.htmlhttp://secunia.com/advisories/43695http://secunia.com/advisories/43721http://secunia.com/advisories/46376http://slackware.com/security/viewer.php?l=slackware-security&y=2011&m=slackware-security.466884http://www.pidgin.im/news/security/?id=51http://www.redhat.com/support/errata/RHSA-2011-0616.htmlhttp://www.redhat.com/support/errata/RHSA-2011-1371.htmlhttp://www.securityfocus.com/bid/46837http://www.vupen.com/english/advisories/2011/0643http://www.vupen.com/english/advisories/2011/0661http://www.vupen.com/english/advisories/2011/0669http://www.vupen.com/english/advisories/2011/0703https://bugzilla.redhat.com/show_bug.cgi?id=683031https://exchange.xforce.ibmcloud.com/vulnerabilities/66055https://hermes.opensuse.org/messages/13195955https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18402
2011-03-14
Published